KERNEL_SECURITY_CHECK_FAILURE BEDaisy.sys mavi ekran hatası

shanoglu60

Kilopat
Katılım
7 Mart 2014
Mesajlar
910
Makaleler
2
Çözümler
1
Yer
Tarsus
Daha fazla  
Cinsiyet
Erkek
Meslek
Seo
Merhaba arkadaşlar kendime yeni sistem topladım. Topladığımdan beri mavi ekran sorunu yoktu. Ben bilgi işlemde çalışıyorum. Dün yeni topladığım sistemime yani anakarta USB kartı taktım. Onu taktıktan sonra bugün mavi ekran verdi. Sebep sizce neden olabilir?

Minidump

pci-express-pci-e-usb-30-pci-kart-pcie-4-port-coklayici-bst-2021__0305462066050442.jpg
 
Son düzenleyen: Moderatör:
Problemi Battleye anti hile yazılımı çıkarmış, 3. parti anti-virüs ESET ve Tweak yazılımı Ryzen Master programını kaldır.

O USB çoğaltıcının sürücüsünü kurdun mu?

Ekran kartı sürücüsünü güvenli mod da DDU ile eski sürücüyü silip yeni ve en güncel olanını yükleyin, dikkat edin internetiniz kapalı olsun siz yeni sürücüyü kurar iken Windows arka da eski tarihten kalma bir sürücüyü yükler ve sizde sürücüyü yükleyince üst üste sürücü kurmuş olursunuz.
Kod:
KERNEL_SECURITY_CHECK_FAILURE (139)
A kernel component has corrupted a critical data structure.  The corruption
could potentially allow a malicious user to gain control of this machine.
Arguments:
Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
Arg2: ffffd28c2438e3d0, Address of the trap frame for the exception that caused the bugcheck
Arg3: ffffd28c2438e328, Address of the exception record for the exception that caused the bugcheck
Arg4: 0000000000000000, Reserved

Debugging Details:
------------------

*** WARNING: Unable to verify timestamp for BEDaisy.sys

KEY_VALUES_STRING: 1


PROCESSES_ANALYSIS: 1

SERVICE_ANALYSIS: 1

STACKHASH_ANALYSIS: 1

TIMELINE_ANALYSIS: 1


DUMP_CLASS: 1

DUMP_QUALIFIER: 400

BUILD_VERSION_STRING:  10.0.18362.592 (WinBuild.160101.0800)

SYSTEM_MANUFACTURER:  Gigabyte Technology Co., Ltd.

SYSTEM_PRODUCT_NAME:  B450M S2H

SYSTEM_SKU:  Default string

SYSTEM_VERSION:  Default string

BIOS_VENDOR:  American Megatrends Inc.

BIOS_VERSION:  F50

BIOS_DATE:  11/27/2019

BASEBOARD_MANUFACTURER:  Gigabyte Technology Co., Ltd.

BASEBOARD_PRODUCT:  B450M S2H

BASEBOARD_VERSION:  x.x

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

DUMP_TYPE:  2

BUGCHECK_P1: 3

BUGCHECK_P2: ffffd28c2438e3d0

BUGCHECK_P3: ffffd28c2438e328

BUGCHECK_P4: 0

TRAP_FRAME:  ffffd28c2438e3d0 -- (.trap 0xffffd28c2438e3d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=ffffaf0b19e8c8e0 rbx=0000000000000000 rcx=0000000000000003
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80575848b10 rsp=ffffd28c2438e560 rbp=ffffaf0b1b862040
 r8=0000000000000001  r9=0000000000000002 r10=ffffaf0b0a23d600
r11=ffff9901688e0180 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na pe cy
nt!KiExitDispatcher+0x160:
fffff805`75848b10 cd29            int     29h
Resetting default scope

EXCEPTION_RECORD:  ffffd28c2438e328 -- (.exr 0xffffd28c2438e328)
ExceptionAddress: fffff80575848b10 (nt!KiExitDispatcher+0x0000000000000160)
   ExceptionCode: c0000409 (Security check failure or stack buffer overrun)
  ExceptionFlags: 00000001
NumberParameters: 1
   Parameter[0]: 0000000000000003
Subcode: 0x3 FAST_FAIL_CORRUPT_LIST_ENTRY

CPU_COUNT: c

CPU_MHZ: d42

CPU_VENDOR:  AuthenticAMD

CPU_FAMILY: 17

CPU_MODEL: 8

CPU_STEPPING: 2

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

BUGCHECK_STR:  0x139

PROCESS_NAME:  System

CURRENT_IRQL:  2

DEFAULT_BUCKET_ID:  FAIL_FAST_CORRUPT_LIST_ENTRY

ERROR_CODE: (NTSTATUS) 0xc0000409 - <Unable to get error code text>

EXCEPTION_CODE: (NTSTATUS) 0xc0000409 - <Unable to get error code text>

EXCEPTION_CODE_STR:  c0000409

EXCEPTION_PARAMETER1:  0000000000000003

ANALYSIS_SESSION_HOST:  DESKTOP-18V31A3

ANALYSIS_SESSION_TIME:  01-31-2020 20:34:19.0834

ANALYSIS_VERSION: 10.0.18362.1 x86fre

LAST_CONTROL_TRANSFER:  from fffff805759d32e9 to fffff805759c14e0

STACK_TEXT: 
ffffd28c`2438e0a8 fffff805`759d32e9 : 00000000`00000139 00000000`00000003 ffffd28c`2438e3d0 ffffd28c`2438e328 : nt!KeBugCheckEx
ffffd28c`2438e0b0 fffff805`759d3710 : 00000000`00000000 fffff805`7584ae66 00000000`0000000a 00000000`00000000 : nt!KiBugCheckDispatch+0x69
ffffd28c`2438e1f0 fffff805`759d1aa5 : 00000000`00000000 00000000`00000000 00000000`00000000 ffffd28c`2438e540 : nt!KiFastFailDispatch+0xd0
ffffd28c`2438e3d0 fffff805`75848b10 : 00000000`00000000 ffffd28c`2438e601 ffff9901`688e0180 00000000`00000000 : nt!KiRaiseSecurityCheckFailure+0x325
ffffd28c`2438e560 fffff805`758a555d : ffffaf0b`19e8c8d8 00000000`00000200 ffff9901`688e0101 fffff805`75b6f06d : nt!KiExitDispatcher+0x160
ffffd28c`2438e5c0 fffff805`8f95fc64 : 00000000`00002900 ffffaf0b`143992c8 00000000`00000001 00000000`00000002 : nt!KeInsertQueueApc+0x14d
ffffd28c`2438e660 00000000`00002900 : ffffaf0b`143992c8 00000000`00000001 00000000`00000002 00000000`00000000 : BEDaisy+0x2afc64
ffffd28c`2438e668 ffffaf0b`143992c8 : 00000000`00000001 00000000`00000002 00000000`00000000 00000000`00000000 : 0x2900
ffffd28c`2438e670 00000000`00000001 : 00000000`00000002 00000000`00000000 00000000`00000000 00000000`00000000 : 0xffffaf0b`143992c8
ffffd28c`2438e678 00000000`00000002 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x1
ffffd28c`2438e680 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`c0000001 : 0x2


THREAD_SHA1_HASH_MOD_FUNC:  b61d566806c3900e9d82f26f996154d545d8a932

THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  fca4a2c9edc5b93556e4b2fb148f6720c6f965b3

THREAD_SHA1_HASH_MOD:  0079172978a7673b45090780b1c9d2221d299a5f

FOLLOWUP_IP:
BEDaisy+2afc64
fffff805`8f95fc64 ??              ???

SYMBOL_STACK_INDEX:  6

SYMBOL_NAME:  BEDaisy+2afc64

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: BEDaisy

IMAGE_NAME:  BEDaisy.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  5dce5a59

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  2afc64

FAILURE_BUCKET_ID:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

BUCKET_ID:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

PRIMARY_PROBLEM_CLASS:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

TARGET_TIME:  2020-01-31T17:03:03.000Z

OSBUILD:  18362

OSSERVICEPACK:  592

SERVICEPACK_NUMBER: 0

OS_REVISION: 0

SUITE_MASK:  272

PRODUCT_TYPE:  1

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

OSEDITION:  Windows 10 WinNt TerminalServer SingleUserTS

OS_LOCALE: 

USER_LCID:  0

OSBUILD_TIMESTAMP:  1972-08-22 03:24:00

BUILDDATESTAMP_STR:  160101.0800

BUILDLAB_STR:  WinBuild

BUILDOSVER_STR:  10.0.18362.592

ANALYSIS_SESSION_ELAPSED_TIME:  f62

ANALYSIS_SOURCE:  KM

FAILURE_ID_HASH_STRING:  km:0x139_3_corrupt_list_entry_bedaisy!unknown_function

FAILURE_ID_HASH:  {59d8eb10-b2e4-7df6-f6a5-49968226dbb8}

Followup:     MachineOwner
---------
 
Problemi Battleye anti hile yazılımı çıkarmış, 3. parti anti-virüs ESET ve Tweak yazılımı Ryzen Master programını kaldır.

O USB çoğaltıcının sürücüsünü kurdun mu?

Ekran kartı sürücüsünü güvenli mod da DDU ile eski sürücüyü silip yeni ve en güncel olanını yükleyin, dikkat edin internetiniz kapalı olsun siz yeni sürücüyü kurar iken Windows arka da eski tarihten kalma bir sürücüyü yükler ve sizde sürücüyü yükleyince üst üste sürücü kurmuş olursunuz.
Kod:
KERNEL_SECURITY_CHECK_FAILURE (139)
A kernel component has corrupted a critical data structure.  The corruption
could potentially allow a malicious user to gain control of this machine.
Arguments:
Arg1: 0000000000000003, A LIST_ENTRY has been corrupted (i.e. double remove).
Arg2: ffffd28c2438e3d0, Address of the trap frame for the exception that caused the bugcheck
Arg3: ffffd28c2438e328, Address of the exception record for the exception that caused the bugcheck
Arg4: 0000000000000000, Reserved

Debugging Details:
------------------

*** WARNING: Unable to verify timestamp for BEDaisy.sys

KEY_VALUES_STRING: 1


PROCESSES_ANALYSIS: 1

SERVICE_ANALYSIS: 1

STACKHASH_ANALYSIS: 1

TIMELINE_ANALYSIS: 1


DUMP_CLASS: 1

DUMP_QUALIFIER: 400

BUILD_VERSION_STRING:  10.0.18362.592 (WinBuild.160101.0800)

SYSTEM_MANUFACTURER:  Gigabyte Technology Co., Ltd.

SYSTEM_PRODUCT_NAME:  B450M S2H

SYSTEM_SKU:  Default string

SYSTEM_VERSION:  Default string

BIOS_VENDOR:  American Megatrends Inc.

BIOS_VERSION:  F50

BIOS_DATE:  11/27/2019

BASEBOARD_MANUFACTURER:  Gigabyte Technology Co., Ltd.

BASEBOARD_PRODUCT:  B450M S2H

BASEBOARD_VERSION:  x.x

DUMP_FILE_ATTRIBUTES: 0x8
  Kernel Generated Triage Dump

DUMP_TYPE:  2

BUGCHECK_P1: 3

BUGCHECK_P2: ffffd28c2438e3d0

BUGCHECK_P3: ffffd28c2438e328

BUGCHECK_P4: 0

TRAP_FRAME:  ffffd28c2438e3d0 -- (.trap 0xffffd28c2438e3d0)
NOTE: The trap frame does not contain all registers.
Some register values may be zeroed or incorrect.
rax=ffffaf0b19e8c8e0 rbx=0000000000000000 rcx=0000000000000003
rdx=0000000000000000 rsi=0000000000000000 rdi=0000000000000000
rip=fffff80575848b10 rsp=ffffd28c2438e560 rbp=ffffaf0b1b862040
r8=0000000000000001  r9=0000000000000002 r10=ffffaf0b0a23d600
r11=ffff9901688e0180 r12=0000000000000000 r13=0000000000000000
r14=0000000000000000 r15=0000000000000000
iopl=0         nv up ei pl nz na pe cy
nt!KiExitDispatcher+0x160:
fffff805`75848b10 cd29            int     29h
Resetting default scope

EXCEPTION_RECORD:  ffffd28c2438e328 -- (.exr 0xffffd28c2438e328)
ExceptionAddress: fffff80575848b10 (nt!KiExitDispatcher+0x0000000000000160)
   ExceptionCode: c0000409 (Security check failure or stack buffer overrun)
  ExceptionFlags: 00000001
NumberParameters: 1
   Parameter[0]: 0000000000000003
Subcode: 0x3 FAST_FAIL_CORRUPT_LIST_ENTRY

CPU_COUNT: c

CPU_MHZ: d42

CPU_VENDOR:  AuthenticAMD

CPU_FAMILY: 17

CPU_MODEL: 8

CPU_STEPPING: 2

BLACKBOXBSD: 1 (!blackboxbsd)


BLACKBOXNTFS: 1 (!blackboxntfs)


BLACKBOXPNP: 1 (!blackboxpnp)


BLACKBOXWINLOGON: 1

CUSTOMER_CRASH_COUNT:  1

BUGCHECK_STR:  0x139

PROCESS_NAME:  System

CURRENT_IRQL:  2

DEFAULT_BUCKET_ID:  FAIL_FAST_CORRUPT_LIST_ENTRY

ERROR_CODE: (NTSTATUS) 0xc0000409 - <Unable to get error code text>

EXCEPTION_CODE: (NTSTATUS) 0xc0000409 - <Unable to get error code text>

EXCEPTION_CODE_STR:  c0000409

EXCEPTION_PARAMETER1:  0000000000000003

ANALYSIS_SESSION_HOST:  DESKTOP-18V31A3

ANALYSIS_SESSION_TIME:  01-31-2020 20:34:19.0834

ANALYSIS_VERSION: 10.0.18362.1 x86fre

LAST_CONTROL_TRANSFER:  from fffff805759d32e9 to fffff805759c14e0

STACK_TEXT:
ffffd28c`2438e0a8 fffff805`759d32e9 : 00000000`00000139 00000000`00000003 ffffd28c`2438e3d0 ffffd28c`2438e328 : nt!KeBugCheckEx
ffffd28c`2438e0b0 fffff805`759d3710 : 00000000`00000000 fffff805`7584ae66 00000000`0000000a 00000000`00000000 : nt!KiBugCheckDispatch+0x69
ffffd28c`2438e1f0 fffff805`759d1aa5 : 00000000`00000000 00000000`00000000 00000000`00000000 ffffd28c`2438e540 : nt!KiFastFailDispatch+0xd0
ffffd28c`2438e3d0 fffff805`75848b10 : 00000000`00000000 ffffd28c`2438e601 ffff9901`688e0180 00000000`00000000 : nt!KiRaiseSecurityCheckFailure+0x325
ffffd28c`2438e560 fffff805`758a555d : ffffaf0b`19e8c8d8 00000000`00000200 ffff9901`688e0101 fffff805`75b6f06d : nt!KiExitDispatcher+0x160
ffffd28c`2438e5c0 fffff805`8f95fc64 : 00000000`00002900 ffffaf0b`143992c8 00000000`00000001 00000000`00000002 : nt!KeInsertQueueApc+0x14d
ffffd28c`2438e660 00000000`00002900 : ffffaf0b`143992c8 00000000`00000001 00000000`00000002 00000000`00000000 : BEDaisy+0x2afc64
ffffd28c`2438e668 ffffaf0b`143992c8 : 00000000`00000001 00000000`00000002 00000000`00000000 00000000`00000000 : 0x2900
ffffd28c`2438e670 00000000`00000001 : 00000000`00000002 00000000`00000000 00000000`00000000 00000000`00000000 : 0xffffaf0b`143992c8
ffffd28c`2438e678 00000000`00000002 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`00000000 : 0x1
ffffd28c`2438e680 00000000`00000000 : 00000000`00000000 00000000`00000000 00000000`00000000 00000000`c0000001 : 0x2


THREAD_SHA1_HASH_MOD_FUNC:  b61d566806c3900e9d82f26f996154d545d8a932

THREAD_SHA1_HASH_MOD_FUNC_OFFSET:  fca4a2c9edc5b93556e4b2fb148f6720c6f965b3

THREAD_SHA1_HASH_MOD:  0079172978a7673b45090780b1c9d2221d299a5f

FOLLOWUP_IP:
BEDaisy+2afc64
fffff805`8f95fc64 ??              ???

SYMBOL_STACK_INDEX:  6

SYMBOL_NAME:  BEDaisy+2afc64

FOLLOWUP_NAME:  MachineOwner

MODULE_NAME: BEDaisy

IMAGE_NAME:  BEDaisy.sys

DEBUG_FLR_IMAGE_TIMESTAMP:  5dce5a59

STACK_COMMAND:  .thread ; .cxr ; kb

BUCKET_ID_FUNC_OFFSET:  2afc64

FAILURE_BUCKET_ID:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

BUCKET_ID:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

PRIMARY_PROBLEM_CLASS:  0x139_3_CORRUPT_LIST_ENTRY_BEDaisy!unknown_function

TARGET_TIME:  2020-01-31T17:03:03.000Z

OSBUILD:  18362

OSSERVICEPACK:  592

SERVICEPACK_NUMBER: 0

OS_REVISION: 0

SUITE_MASK:  272

PRODUCT_TYPE:  1

OSPLATFORM_TYPE:  x64

OSNAME:  Windows 10

OSEDITION:  Windows 10 WinNt TerminalServer SingleUserTS

OS_LOCALE:

USER_LCID:  0

OSBUILD_TIMESTAMP:  1972-08-22 03:24:00

BUILDDATESTAMP_STR:  160101.0800

BUILDLAB_STR:  WinBuild

BUILDOSVER_STR:  10.0.18362.592

ANALYSIS_SESSION_ELAPSED_TIME:  f62

ANALYSIS_SOURCE:  KM

FAILURE_ID_HASH_STRING:  km:0x139_3_corrupt_list_entry_bedaisy!unknown_function

FAILURE_ID_HASH:  {59d8eb10-b2e4-7df6-f6a5-49968226dbb8}

Followup:     MachineOwner
---------
Hile programı kullanmıyorum. ESET programı ise lisanslı yani orijinal olarak kullanıyorum. Tweak yazılımı hangisidir? Ryzen master kullanmıyorum zaten kaldırırım. Hayır anakarta taktığım USB PCI kart okuyucusunun sürücüsünü kurmadım. Ekran kartı sürücüsünü de kendi programından güncelledim.
 
Anti-Hile yazılımı yani oyunların kendi kurduğu program hile programı demedim.

Tamam lisanslı kullanıyor olabilirsin geçici olarak kaldır.
Ryzen Master yazılımı mavi ekran alırken açıkmış, kullanmıyorsan tüm dosyaları ile birlikte kaldır.
Ekran kartını dediğim gibi DDU ile kaldır tekrar yükle.

USB çoğaltıcının sürücüsünü neden kurmadın?
 
Anti-Hile yazılımı yani oyunların kendi kurduğu program hile programı demedim.

Tamam lisanslı kullanıyor olabilirsin geçici olarak kaldır.
Ryzen Master yazılımı mavi ekran alırken açıkmış, kullanmıyorsan tüm dosyaları ile birlikte kaldır.
Ekran kartını dediğim gibi DDU ile kaldır tekrar yükle.

USB çoğaltıcının sürücüsünü neden kurmadın?

Anti-Hile programını kaldırırsam herhalde PUBG gibi online oyunları oynayamam sanırım.
Sıkıntı yok mavi ekran vermesin de ESET programını kaldırırım.
Ryzen Master yazılımını kullanmıyorum zaten kaldıracağım.
Ekran kartını ise dediğiniz gibi DDU ile kaldırıp en son sürümünü yüklerim.
Windows 10 en son güncellemesini yapmadım. Birisi en son güncelleme ile mavi ekran aldığını söylemişti.
USB çoğaltıcısının da driverini bulamadım. Nereden bulabilirim.
 
Uyarı! Bu konu 5 yıl önce açıldı.
Muhtemelen daha fazla tartışma gerekli değildir ki bu durumda yeni bir konu başlatmayı öneririz. Eğer yine de cevabınızın gerekli olduğunu düşünüyorsanız buna rağmen cevap verebilirsiniz.

Geri
Yukarı